An issue was discovered in dec_patch_dictionary.cc in libjxl before 0.8.2. An integer underflow in patch decoding can lead to a denial of service, such as an infinite loop.
CVE ID: CVE-2023-35790
Vendor: n/a
Product: n/a
EPSS Score: 0.1% (probability of being exploited)
EPSS Percentile: 43.02% (scored less or equal to compared to others)
EPSS Date: 2025-02-04 (when was this score calculated)